dhi.io/elixir
1.19-alpine-fips-dev, 1.19-alpine3.24-fips-dev, 1.19.6-alpine-fips-dev, 1.19.6-alpine3.24-fips-dev
sha256:2aa6df5bbca6297ed525a31f4b1db7b48c268e10ef0848bdbaf789ebed847790
Manifest digest:sha256:4e564d048d79bf9caf6f0098162aec4127ee36d0218155742cac9f5abb4d64a1
Size
45.81 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/elixir:1.19-alpine-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/elixir:1.19-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/elixir@sha256:77b4d79267f809d2e1a50695d916656c06ab52f549acca60042950c4d0b00390 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/elixir@sha256:61593403b38a652f49d532599db18cb7ce9a315eb6da5b26e22d180ac26c4e77 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/elixir@sha256:a0e383ec5ab65f5b6e71fd5d2d567fb51ca6104e32a1612f1614f22f8e70091f |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/elixir@sha256:d6c70118a0b55c0cd52f5f5d8801103fd2273244448b7d39033c793d367729fd |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/elixir@sha256:4ef101fa7905dba9df959528cbcb91dd8974b54f549064cb1d6c9cab7df58a7e |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/elixir@sha256:fdde43d436cb3c8c37185c3d3a9e1edc34126f367410c85e8a86484d27a97b5c |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/elixir@sha256:ae2f48b77f9e52b07bc141f52196f03f850fa77ef721e59b9e1424ad9d29699b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/elixir@sha256:82905496cb655d41cb9caa160e0370f2385a2b1294a584525c37d71ca3d3d31a |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/elixir@sha256:3798d6d4b542d92501747cf1e9ddde7489fcd5fac83ea28334a154b4cbffd197 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/elixir@sha256:afddc0c57ff14c4cb1fae000823084024261308022985afc4a51a3b6e1c05175 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/elixir@sha256:f09305fe214beca5224fe9805d7c18de1f579e1ea8387f1e5f69d8279b1afdf5 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/elixir@sha256:94960771e7402eb7b3a67a2a0414ec0dd9ab54eebbb6e241fc133d334e10e5bd |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/elixir@sha256:0eb877113cd1736da44ca41c0006136ea8c0297f045516388c41ce065de9ed70 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/elixir@sha256:07552e814d7a8f35d2b59d6dbc3b2b3b3347e059dd8772244233846c6611cc57 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/elixir@sha256:c743d7e1acda6c1bc11950d07b625a5c40dcbbd9905e2afaf0e2d1fbf2ea28a4 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/elixir@sha256:53a745cdac27755ba5a7e9235dd9ca70dc250e09738f47d82e62c978a05e8656 |